Commit Graph

5253 Commits

Author SHA1 Message Date
Atomic Red Team GUID generator 53bb17be7c Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-06-01 20:25:27 +00:00
Hare Sudhan 22150beff8 Merge pull request #2427 from aranhams/patch-1
Add new atomic test to T1140.yaml
2023-06-01 16:24:41 -04:00
Hare Sudhan 5b570a0f4d Merge branch 'master' into patch-1 2023-06-01 13:53:52 -04:00
Atomic Red Team doc generator 210485a6d3 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 21:17:38 +00:00
Carrie Roberts af9378c9f3 update executor (#2444)
* update executor

* Update T1016.yaml

---------

Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 15:16:42 -06:00
Atomic Red Team doc generator cb29aa596f Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 21:08:41 +00:00
Carrie Roberts 35c539e776 move PS1 to src (#2443)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 15:07:35 -06:00
Atomic Red Team doc generator 03e04d3994 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 21:04:38 +00:00
Carrie Roberts bf2a19d672 handle null value in prereq (#2442)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 15:03:42 -06:00
Atomic Red Team doc generator a95bc62be4 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 20:57:54 +00:00
Atomic Red Team GUID generator d7191cd8b1 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-31 20:57:30 +00:00
KillrBunn3 f19429af8c New test under T1027: Executing zipped JavaScript using WScript (#2447)
* Update T1027.yaml

This test is intended to closely emulate Gootloader's patterns of execution - launching a js file through wscript after being unpacked from a .zip.

* leave prereq files in place

---------

Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-05-31 15:56:36 -05:00
Atomic Red Team doc generator b471d4cc2b Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 20:54:37 +00:00
Carrie Roberts 3ee287e1e3 restart rdp after changes (#2449)
Co-authored-by: Michael Haag <5632822+MHaggis@users.noreply.github.com>
2023-05-31 14:53:42 -06:00
Atomic Red Team doc generator a59de488ff Generated docs from job=generate-docs branch=master [ci skip] 2023-05-31 20:51:23 +00:00
KillrBunn3 65294196d0 Spelling adjustments (#2448)
Looking over the YAMLs mostly, only changes for readability or accuracy
2023-05-31 15:50:22 -05:00
Atomic Red Team doc generator 1c1f63ede7 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-30 21:22:52 +00:00
Atomic Red Team GUID generator 3791f515f2 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-30 21:22:34 +00:00
Alphonsa George 52530d45d1 Adding atomics to emulate suspicious LAPS attribute queries (#2445)
* Adding atomics to emulate suspicious LAPS attribute queries

* Adding atomics to emulate suspicious LAPS attribute queries

* Adding atomics to emulate suspicious LAPS attribute queries

---------

Co-authored-by: alphonsa-01 <NA>
2023-05-30 16:21:54 -05:00
Hare Sudhan 4b5d264468 Merge branch 'master' into patch-1 2023-05-29 09:07:46 -04:00
Atomic Red Team doc generator 417ee7ba17 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-28 02:35:16 +00:00
Hare Sudhan 4817d52334 Merge pull request #2441 from redcanaryco/clr2of8-patch-37 2023-05-27 22:34:11 -04:00
Matheus Aranha 87e2c0406a fix: removed GUID field 2023-05-27 20:50:57 +02:00
Carrie Roberts 0665611356 elevation not required for password changes 2023-05-26 19:04:02 -06:00
Atomic Red Team doc generator 35fa10287e Generated docs from job=generate-docs branch=master [ci skip] 2023-05-26 20:46:19 +00:00
Atomic Red Team GUID generator bafcc36958 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-26 20:46:01 +00:00
Hare Sudhan 7038a5299f Merge pull request #2440 from clr2of8/password-policy-checks
Password policy checks
2023-05-26 16:45:17 -04:00
Carrie Roberts a62d04d488 fix double quotes 2023-05-26 14:37:52 -06:00
Carrie Roberts 897aad996c Merge branch 'master' into password-policy-checks 2023-05-25 18:54:07 -05:00
clr2of8 be43e3cc29 password policy checks 2023-05-25 17:53:13 -06:00
clr2of8 6a45233b2a password policy checks 2023-05-25 17:45:35 -06:00
clr2of8 652d372f4d password policy checks 2023-05-25 17:42:04 -06:00
Jose Enrique Hernandez cfe582b2b2 Merge branch 'master' into patch-1 2023-05-25 13:28:43 -04:00
Atomic Red Team doc generator f5564f54bf Generated docs from job=generate-docs branch=master [ci skip] 2023-05-25 13:26:28 +00:00
Atomic Red Team GUID generator 6b0a8417fd Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-25 13:26:11 +00:00
Paul 964c1296bd Update T1069.002.yaml (#2439) 2023-05-25 07:25:15 -06:00
Hare Sudhan b262c88ac8 minor bug fix for the validation and labels (#2438) 2023-05-24 11:08:41 -05:00
Atomic Red Team doc generator c3438e27b7 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-23 14:13:38 +00:00
Hare Sudhan 47f54670b7 Merge pull request #2434 from clr2of8/1098-regex
fix regex issue
2023-05-23 10:12:48 -04:00
Hare Sudhan 34145f6ad2 Merge branch 'master' into 1098-regex 2023-05-23 10:06:08 -04:00
Atomic Red Team doc generator 1359912ccc Generated docs from job=generate-docs branch=master [ci skip] 2023-05-23 13:41:00 +00:00
Atomic Red Team GUID generator 9468bfc13a Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-23 13:40:42 +00:00
tccontre 215ead274f Update T1135.yaml - network share discovery via dir cmd (#2436)
Co-authored-by: Carrie Roberts <clr2of8@gmail.com>
2023-05-23 07:40:15 -06:00
dependabot[bot] 9751212d82 Bump requests from 2.30.0 to 2.31.0 (#2435)
Bumps [requests](https://github.com/psf/requests) from 2.30.0 to 2.31.0.
- [Release notes](https://github.com/psf/requests/releases)
- [Changelog](https://github.com/psf/requests/blob/main/HISTORY.md)
- [Commits](https://github.com/psf/requests/compare/v2.30.0...v2.31.0)

---
updated-dependencies:
- dependency-name: requests
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 07:36:37 -06:00
Atomic Red Team doc generator 7a75e19fb7 Generated docs from job=generate-docs branch=master [ci skip] 2023-05-23 02:49:16 +00:00
Atomic Red Team GUID generator bbc47aa361 Generate GUIDs from job=generate-docs branch=master [skip ci] 2023-05-23 02:48:59 +00:00
Hare Sudhan d14ba0aa18 Merge pull request #2428 from aranhams/patch-2
Add a new atomic test to T1560.001.yaml
2023-05-22 22:47:53 -04:00
clr2of8 0f2d35484f fix regex issue 2023-05-22 11:56:05 -06:00
Matheus Aranha c10aa03c2f fix: typo 2023-05-20 18:42:22 +02:00
Matheus Aranha 2e40537aaa fix: typo in file names, adding variables 2023-05-20 14:54:36 +02:00